Thanks Rifaat, Hannes, and also thanks to all the authors. I’ve been through the latest spec and it basically looks great to me; I raised 3 minor niggles under https://github.com/oauthstuff/draft-oauth-par/issues <https://github.com/oauthstuff/draft-oauth-par/issues>
https://github.com/oauthstuff/draft-oauth-par/issues/59 <https://github.com/oauthstuff/draft-oauth-par/issues/59> - possible ambiguity in the text around error responses from new endpoint https://github.com/oauthstuff/draft-oauth-par/issues/62 <https://github.com/oauthstuff/draft-oauth-par/issues/62> & https://github.com/oauthstuff/draft-oauth-par/issues/63 <https://github.com/oauthstuff/draft-oauth-par/issues/63> - minor typographical points For info, Authlete has at least one deployed implementation of this spec. Authlete has also assisted in getting tests for PAR added to the Open ID Foundation FAPI Certification test suite for Authorization Servers, and (although there’s still a few niggles in the tests to work out) the tests seem to interoperate with Authlete, Filip’s node-oidc-provider and a Ping implementation fine. (Many thanks to Filip & Ping for testing them! If anyone else would like to try them please let me know.) Thanks Joseph > > On 11 Aug 2020, at 23:07, Rifaat Shekh-Yusef <[email protected]> wrote: > > All, > > This is a WGLC on the Pushed Authorization Requests document: > https://www.ietf.org/id/draft-ietf-oauth-par-03.html > <https://www.ietf.org/id/draft-ietf-oauth-par-03.html> > > Please, take a look and provide feedback on the list by August 25th. > > Regards, > Rifaat & Hannes > > _______________________________________________ > OAuth mailing list > [email protected] > https://www.ietf.org/mailman/listinfo/oauth
_______________________________________________ OAuth mailing list [email protected] https://www.ietf.org/mailman/listinfo/oauth
